Security OperationsPregunta 80 de 100
Which practice ensures logs cannot be tampered with by centralizing them on a protected, write-once server?
a.Log rotation
b.Log integrity and centralization
c.Log compression
d.Log sampling
Explicación
Centralizing logs on a hardened, tamper-resistant server preserves their integrity for investigations. Attackers often try to delete local logs to hide activity, so protected central storage defeats this. Techniques like write-once media and hashing further ensure integrity.
Practica las 100 preguntas gratis — sin registro.
Preguntas relacionadas de este tema
- An authorized simulated attack that attempts to exploit vulnerabilities to test defenses is a:
- Which detection method flags activity that deviates from an established normal pattern?
- Which endpoint solution continuously records activity and enables investigation and automated response to threats on hosts?
- A discussion-based session where a team walks through their response to a hypothetical incident is called a:
- Which automation approach uses playbooks to coordinate tools and streamline security operations tasks?
- Which principle requires that two people perform a sensitive action together to prevent fraud?
Última revisión: · proceso editorial
Equipo Editorial de PrepPass · Verificado con CompTIA Security+ (SY0-701) · Cómo revisamos